IQSIGHT has been appointed as a Common Vulnerability and Exposures (CVE) Numbering Authority (CNA) in the CVE® Program, underscoring its commitment to proactive security management in the field of video security.
This recognition enables IQSIGHT to issue unique CVE identifiers for vulnerabilities detected within its software and firmware.
Streamlining Vulnerability Management
Previously managed through the Bosch Product Security Incident Response Team, IQSIGHT's new role as a CNA will expedite the publishing of crucial advisory information to both the U.S. National Vulnerability Database (NVD) and the EU Vulnerability Database (EUVD). This transition reflects the company's continuous efforts to enhance data security and bolster its cyber resilience through improved vulnerability and incident management processes.
IQSIGHT's new role as a CNA will expedite the publishing of crucial advisory information
"Becoming a CVE Numbering Authority is a significant step in our mission to provide intelligence-first video security that leaders can trust," stated Thomas Elsässer, Vice President of Research and Development at IQSIGHT.
Meeting Government Compliance
With the autonomy to manage its own CVE assignments, IQSIGHT ensures that customers receive timely notifications about possible security threats and the corresponding mitigation techniques. As a CNA under the European Union Agency for Cybersecurity (ENISA), IQSIGHT ensures it aligns with global cybersecurity standards.
In light of changing cybersecurity legislations, such as the European Union's Cyber Resilience Act, IQSIGHT is dedicated to not only meeting but exceeding compliance requirements. By implementing these capabilities, the organization is prepared to address future regulatory challenges while prioritizing user data protection.
IQSIGHT, a global pioneer in intelligence-first video security, announces its appointment as a Common Vulnerability and Exposures (CVE) Numbering Authority (CAN) in the CVE® Program.
This milestone reinforces IQSIGHTʼs dedication to transparency and proactive security management, allowing the organization to issue unique, standardized identifiers, known as CVE records, for vulnerabilities found in its software and firmware.
Critical advisory information
Previously accomplished through the Bosch Product Security Incident Response Team, the new CNA designation for IQSIGHT will streamline the process of publishing critical advisory information to the U.S. National Vulnerability Database (NVD) and the EU Vulnerability Database (EUVD). The approval reflects the company's ongoing efforts to ensure data security and cyber resilience in its products by strengthening its vulnerability and incident management process.
"Becoming a CVE Numbering Authority is a significant step in our mission to provide intelligence-first video security that leaders can trust," said Thomas Elsässer, Vice President of Research and Development at IQSIGHT.
Government compliance requirements
"By managing our own CVE assignments, we are ensuring customers receive timely information about potential security risks along with the appropriate mitigation strategies.ˮ IQSIGHT has been onboarded as a CNA under the European Union Agency for Cybersecurity (ENISA), which serves as the organizationʼs Root CNA.
Commitment to Global Standards and Compliance As cybersecurity regulations evolve, IQSIGHT remains committed to meeting and exceeding government compliance requirements, such as the European Unionʼs Cyber Resilience Act. By establishing these capabilities now, IQSIGHT ensures it is well-positioned to meet future regulatory demands while prioritising the safety of user data.